Re: [RFC] Distrust SHA-1 Certificates
| From: | Niklas Keller | Date: | Tue, 30 May 2017 05:51:23 +0000 |
| Subject: | Re: [RFC] Distrust SHA-1 Certificates | ||
| References: | 1 2 3 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-99253@lists.php.net to get a copy of this message | ||
Hi Jakub,
do you know how I can check whether a certificate is in the trust store or
not?
Regards, Niklas
2017-05-29 22:00 GMT+02:00 Jakub Zelenka <bukka@php.net>:
> On Mon, May 29, 2017 at 11:58 AM, Niklas Keller <me@kelunik.com> wrote:
>
>> Morning Internals,
>>
>> I have updated the RFC to use a "min_signature_bits" setting instead.
>>
>>
> Wouldn't be better use security levels instead as it is in OpenSSL? Of
> course I mean just for sig level to not re-implement everything. Basically
> having sig_level or something like that...
>